Security Advisory

CVE-2019-18871

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-05-07 13:06:36
Last updated 2024-08-05 02:02:39
Assigner mitre
State PUBLISHED

Description

A path traversal in debug.php accessed via default.php in Blaauw Remote Kiln Control through v3.00r4 allows an authenticated attacker to upload arbitrary files, leading to arbitrary remote code execution.